FortiWeb
A FortiWeb can be configured to join a Security Fabric through the root or downstream FortiGate.
yashwani
Staff
Staff
Article Id 338160
Description This article describes why the 'cookiessession1' cookie is inserted.
Scope FortiWeb.
Solution

FortiWeb Generates a cookie named 'cookiesession1' when the client management is enabled. 

 

FortiWeb generates a unique user ID based on either the cookie value or the source IP address. This user ID allows FortiWeb to track and manage user behavior consistently across sessions.

 

From the below screenshot, it is possible to see that the client management is enabled. 

 

client mgmt enabled.PNG

 

Once client management is enabled and a web protection profile is applied to the appropriate application's server policy, it is possible to notice that a new cookie is inserted into the user's browser.

 

This cookie is used to track the user and manage session information. The tracking helps FortiWeb to identify individual users, enforce security rules, and perform various protection actions based on the user's behavior during the session.

 

cookiesession1.PNG